How to Renew the Free SSL Certificates (Nginx Server)?
- 时间:2020-09-08 11:19:41
- 分类:网络文摘
- 阅读:130 次
Nowadays, you can easily get a free SSL certificate but you have to manually/automatically renew it every 90 days.
To apply for a certificate, you have to verify your domain – either by email of your domain, place a file on your server (which can be public accessed), or modify the DNS record.
If your DNS has configured CAA records, you need to remove them or add specific records allowing a SSL provider to issue the certificates on your domain.
Once the certificates are issued, you will see the following files:
- ca_bundle.crt
- certificate.crt
- private.key
You need to combine two CRTs into one:
1 | cat certificate.crt ca_bundle.crt >> certificate.crt |
cat certificate.crt ca_bundle.crt >> certificate.crt
Then in Nginx server, add the following in server block:
listen 443; ssl on; ssl_certificate /etc/ssl/certificate.crt; ssl_certificate_key /etc/ssl/private.key;
Last but not least, restart the nginx server.
1 2 3 | sudo /etc/init.d/nginx restart # or sudo service nginx restart |
sudo /etc/init.d/nginx restart # or sudo service nginx restart
To get free SSL/HTTPS certificates, you can choose one of the following:
- https://letsencrypt.org/
- https://sslforfree.com/

1 page view per second
–EOF (The Ultimate Computing & Technology Blog) —
推荐阅读:均分田地问题 切西瓜的数学问题 最短的路线问题 漏船舀水 求零件的总个数 相邻路灯间的距离 为什么图上面积与实际面积的比不等于比例尺? 求A、B两地的距离 一道数学推理题 飞机能飞出多远?
- 评论列表
-
- 添加评论